A malicious npm package reached over 2 million weekly downloads by hiding its payload in a routine library function rather than an install script.
Malicious Terraform providers and Go modules deliver Graphalgo-linked Go malware using blockchain and Slack for command and control.
In mid-September 2026, security firm Kaspersky released detailed findings regarding the latest version of "MacSync," a prominent information-stealing spyware (infostealer) targeting macOS.Its ...
JSAUX Steam Machine displays add custom screens to your setup. The E-Ink option offers a 22-day battery, while the Pixel ...
To retrieve the address of its command-and-control server, the malware uses the Solana blockchain. This gives the attackers a ...
Modern endpoint attacks are increasingly targeting the security controls themselves. Instead of simply attempting to evade antivirus or EDR detection, attackers are finding ways to disable those ...
Malicious npm package indexed-btree hid its loader in runtime code, avoiding install hooks after logging millions of downloads.
Nuovo malware macOS Sonoma si nasconde in installatori falsi di StreamYard, Zoom, Slack e DocSend, poi ruba password, dati ...
HBO Max's verified Reddit account was hijacked to push 108 malicious ads using ClickFix, a technique that tricks victims into running dangerous commands.
Fake LastPass installer on GitHub disables antivirus with Microsoft-signed kernel driver, stealing passwords and crypto wallets.
Cybercriminals are exploiting the growing interest in artificial intelligence-powered trading agents to trick cryptocurrency users into downloading malware capable of ...
Rapuncel infostealer campaign stole browser passwords and crypto wallet data from Windows users after a Microsoft-signed ...